Uncensy18+
Privacy and safety

AI companion privacy: what these apps collect and how to protect yours

A practical, non-promotional guide to AI companion privacy: what these apps collect, how to check a platform before signing up, payment privacy, account deletion, and warning signs of a bad operator.

Privacy and safety17 min read
Privacy and data protection concept illustrating what AI companion and AI girlfriend apps collect

Key takeaways

  • AI companion apps typically hold your chat history, generated images or voice clips, account email, and payment metadata. Some of that is more sensitive than an ordinary app, because of what people say inside these conversations.
  • Check a platform's privacy policy, deletion process, and data-sharing disclosure before you sign up, not after.
  • Crypto payment keeps a purchase off your card statement. It is not the same as being anonymous: exchanges usually require identity checks, and blockchain transactions are public.
  • Account deletion on most platforms is a soft delete with a restore window first, then a scheduled permanent purge. Read the specific retention period stated in the policy rather than assuming it is instant.
  • A 2024 Mozilla Foundation review found widespread, heavy data collection across romantic AI chatbot apps as a category. That history is a reason for caution with any app in this space, not just the ones reviewed.
  • No AI companion app is risk-free. The realistic goal is informed use: know what you are handing over, and treat the conversation accordingly.

AI companion privacy means knowing what an app stores about you, chats, images, voice, and payment data, who can see it, and how to delete it. Before you sign up, check the privacy policy, look for a real account deletion option, and consider a payment method that keeps the purchase off your card statement. No app is fully risk-free.

What data AI companion apps actually hold

Strip away the marketing and most AI companion apps store a fairly predictable set of data. Your account email or phone number, and whatever a social login shares with it. Every message you send and every reply you receive, usually kept indefinitely by default so the companion can keep referencing earlier conversations. Any image, voice clip, or video generated for you. Payment history and billing metadata, even when the card details themselves are handled by a separate payment processor.

The metadata most people forget about

Beyond the conversation itself, most apps also log device and session information: rough location from your IP address, browser or device type, and every login timestamp. Some track which link or referral source brought you to the app, and how long each session lasts. None of this is unique to AI companion apps. Almost every consumer app collects some version of it. It is worth listing anyway, because it is the data people are least likely to think about when they consider what an app actually knows about them.

That list is not unusual for a consumer app. What is unusual is the content sitting inside it. A shopping app knows what you bought. An AI companion app can end up holding a written record of what you find attractive, what you are lonely about, what you fantasize about, or what you would never say out loud to a person you know. The category of data is ordinary. What people put into it is often not.

Who can see it internally

Data is not just held. Someone inside the company can, in principle, look at it. Moderation review of flagged conversations, customer support handling a billing dispute, and engineers debugging a production issue are all normal, legitimate reasons a real person might end up looking at a slice of account data. What varies enormously between companies is how narrow that access is kept, whether it is logged, and whether staff are trained and bound by policy on what they can do with what they see. A privacy policy rarely spells this out in detail, which is exactly why it is worth asking about directly if a company makes it easy to ask at all.

Why AI companion privacy is different

A breach at a typical app is inconvenient. A breach at an AI companion app can expose something closer to a diary than a purchase history, tied to a real name and a real email address. Mozilla Foundation's 2024 review of romantic AI chatbot apps described exactly this pattern: apps in this category collecting more personal and intimate data than the category strictly requires, often without clear limits on how long it is kept or who it is shared with.

There is also a disclosure problem specific to this category. People are more likely to share something revealing in a private, judgment-free conversation with a companion than in a search bar or a form field, precisely because it feels private. That feeling is doing real work the platform may or may not deserve. Treat "it feels private" and "it is private" as two separate questions, and answer the second one yourself before you answer the first one for the app.

There is also an aggregation risk that is easy to miss in the moment. No single message usually reveals much on its own. Months of messages together can paint a detailed picture: routine, location patterns, relationship status, insecurities, even health details mentioned in passing. Any one data point feels harmless to share. The accumulated record is a different thing entirely, and the app sees the accumulated version, not just today's message.

What to check before you sign up

Five minutes with a privacy policy before you create an account is worth more than any amount of reading about the app afterward. Look for these specifically, not just whether a privacy policy exists.

  • Does the privacy policy say plainly whether your chats are used to train AI models, and is there a way to opt out?
  • Is there a real account deletion option inside the app, or does deleting your data require emailing support and hoping?
  • Does the policy disclose whether data is shared or sold to third parties, and for what purpose?
  • Are payment options limited to a card, or is there an alternative that does not tie the purchase to your regular statement?
  • Can you find a real company name and jurisdiction behind the app, not just a generic support inbox?
  • Does the app require login before you can chat at all, or does it allow anonymous use? Neither is automatically better. A login requirement usually means more accountability and less true anonymity, and you should know which trade-off you are accepting.

If you cannot find clear answers to most of these in under five minutes, that alone is useful information about how the company treats the topic.

How to read a privacy policy in five minutes

Nobody reads an entire privacy policy end to end, and you do not need to. Use your browser's find function and search for a handful of specific words instead of reading top to bottom.

  • "Train" or "training": does the policy say whether your conversations are used to train AI models, and whether you can opt out?
  • "Sell" or "share": does it disclose sharing personal data with third parties, and under what circumstances?
  • "Retain" or "retention": is there an actual stated time period, or only a vague promise to keep data "as long as necessary"?
  • "Delete" or "erasure": does it describe a real, user-initiated deletion process, not just a request you have to email in and hope works?
  • "Third party" or "partners": who else, if anyone, gets access to your account or usage data?

Also check the effective date at the top or bottom of the document. A policy last updated years ago, on a product that has clearly changed since, is a sign the document may not reflect what the app actually does today.

Payment privacy, including the crypto option

What a card statement can reveal

Card payments on adult platforms often show up on a statement in a way that is at least loosely identifiable, even when the merchant name is deliberately generic. Anyone with access to that statement, a shared account, a household budgeting app, a partner who checks the mail, can potentially connect a line item to this specific kind of purchase. If that is a real concern for you, some platforms, including Uncensy, offer a cryptocurrency checkout as a separate, one-time hosted invoice, typically for diamond or credit top-ups and prepaid subscription terms rather than an ongoing card-on-file subscription.

What crypto actually hides, and what it does not

Be precise about what crypto actually buys you here. It keeps the purchase off your card statement. It does not make the purchase anonymous. Most people buy cryptocurrency through an exchange that requires identity verification, and the transaction itself sits on a public blockchain ledger that can, in principle, be traced back to a wallet and, from there, to an exchange account tied to a real identity. Crypto payment is a privacy improvement over a card statement, not a guarantee of anonymity. Treat it as the first, not the last, word on payment privacy.

If your only goal is keeping this specific purchase off a shared card statement, crypto solves that narrow problem well. If your goal is not being identifiable at all, no payment method fully delivers that, and it is worth being honest with yourself about which of the two you actually need.

Account deletion and what actually gets removed

"Delete my account" means different things on different platforms, and the difference matters. Some apps deactivate your account and keep every record intact indefinitely. Others run a soft delete: your account and data are marked for removal and held for a restore window in case you change your mind or the deletion was accidental, then a scheduled cleanup process permanently removes what is left once that window closes.

That second pattern, soft delete followed by scheduled permanent removal, is common across legitimate platforms, including Uncensy, because it protects against accidental or malicious deletion while still honoring the request. The part worth checking on any specific app is the actual retention window: how many days between a delete request and permanent removal, and whether backups are purged on the same timeline or a longer one. A privacy policy that states a specific number is more trustworthy than one that only says "we will delete your data," with no timeframe attached.

If you are in the EU or EEA, GDPR Article 17 gives you a legal right to request erasure of your personal data, and Article 15 gives you the right to request a copy of what an organization holds about you, regardless of what a specific platform's default process looks like. That right does not disappear because an app is based outside the EU, if the app is offered to EU residents. It is one of the few concrete levers a user actually has, and it is worth knowing you have it.

Device hygiene and anonymity basics

A private browser window hides your history from other people who use the same device. It does nothing to hide your activity from the app's own servers. That is a common mix-up worth clearing up early: "private browsing" and "private from the company you are talking to" are two completely different things, and only the first one is what incognito mode actually does.

  • Use a separate email for accounts you want kept apart from your main identity, rather than reusing the one tied to your real name everywhere.
  • Avoid reusing a username, avatar, or photo you use on identifiable social accounts.
  • Log out on shared or borrowed devices. A logged-in session left open is a far more common leak than any server-side breach.
  • Review notification settings. Push notifications with message previews can surface private content on a lock screen other people can see.
  • Use a unique password for any account tied to intimate content, so a breach somewhere else cannot be reused to get into this one.
  • Clear autofill suggestions on a shared browser profile, since a saved email or search term can surface for the next person who uses the same device.
  • If you use automatic cloud photo backup, check whether it also saves images generated inside a companion app, rather than assuming it does not.

Before you type anything identifying

Do not put your real full name, workplace, home address, or a real, identifiable person's photo into a companion conversation, even as part of a fictional story. Treat anything you type the way you would treat a post on a public forum: assume it could eventually be read by someone other than you, and keep identifying details out of it.

Warning signs of a bad operator

  • No findable privacy policy, or one that reads like a generic legal template with no specifics about this particular app.
  • No account deletion option in the app itself, only a support email you have to hope actually gets acted on.
  • Vague or missing information about who runs the company, with no real name, jurisdiction, or way to contact them beyond an in-app chat bot.
  • Marketing that promises "complete anonymity" or "we never store anything" with no privacy policy to back that claim up. A specific, verifiable claim is trustworthy. An unverifiable absolute claim is a slogan.
  • Only one payment method, always a card, with no alternative and no clear billing descriptor disclosure.
  • Aggressive upsell prompts timed to emotionally intense moments in a conversation, a manipulative pattern flagged repeatedly in independent research on this app category.
  • A subscription that is easy to start and deliberately hard to cancel, buried behind extra steps or a "please don't go" retention flow before you can actually cancel.

One of these alone might be a rough edge. Several together are a pattern, and a pattern is worth walking away from before you hand over a card number or an email address.

If a platform will not honor your request

Sometimes the checklist and the warning signs are not enough, and you end up stuck: you asked for your data or your account to be deleted, and nothing happened. A few concrete steps still apply before giving up.

  1. Put the request in writing, through the app's own support channel or a listed contact email, and keep a copy with a timestamp.
  2. Give it a reasonable window. A privacy policy that states a specific number of days for a response is the benchmark; a policy with no stated timeline still owes you a response in a reasonable time.
  3. If you are in the EU or EEA and the company does not respond, you can file a complaint with your national data protection authority, which has real enforcement power under GDPR.
  4. Outside the EU, consumer protection agencies in your own country or state often accept complaints about companies that ignore their own stated privacy or deletion policies, even without an AI-specific law behind them.
  5. Document everything as you go. A paper trail matters more than it seems like it should, right up until the moment it is the only thing that gets a response.

Most reputable companies never make you go past step one. If you do end up further down this list, that outcome alone is worth remembering the next time you consider signing up for something similar.

What privacy law actually covers you

If you are in the EU or EEA, GDPR gives you real, enforceable rights: access to what is held about you under Article 15, and erasure under Article 17, regardless of what any single app's settings menu offers by default. The EU AI Act adds a more specific rule for AI companions: under Article 50, an AI system that interacts directly with people has to make clear that you are talking to an AI, not a person, unless that is already obvious from context. That is a low bar, but it is a real, binding one inside the EU.

Outside the EU, the picture is far less consistent. California's state privacy law gives residents general rights to know, delete, and limit the sale of personal information, but like GDPR, it was not written specifically for AI companion apps and leaves plenty of category-specific questions unanswered. Most other jurisdictions have no dedicated AI companion regulation at all as of today. The honest summary: law provides a real floor in some places and almost nothing in others, so the specific privacy policy of the specific app you are using matters more than which country you happen to be in.

Is an AI girlfriend app safe? Honest tradeoffs

The honest answer is that "safe" is not a single yes or no for this category. Mozilla's 2024 review found heavy, inconsistent data collection practices across the romantic AI chatbot apps it tested, which is documented evidence that privacy weaknesses in this category are common, not rare. That finding is about the category broadly, and it is a reasonable starting point for skepticism toward any app in it, including ones not in that specific review.

The emotional side of the risk is just as real as the data side. Common Sense Media's 2025 research found that nearly three in four teens had used an AI companion, a scale of use among minors that has driven most of the public research and policy attention this category gets. That is precisely why every legitimate platform enforces an 18+ requirement rather than leaving age as an honor system. For adults, the equivalent caution is simpler: an AI companion is software, not a confidant with the confidentiality protections of a therapist, a doctor, or a lawyer. Nothing you say to one is privileged.

It helps to separate two different kinds of risk that tend to get lumped together in casual conversation about this category: data risk, meaning what a company does with what you type, and emotional risk, meaning what a heavy reliance on a companion does to your day-to-day life and relationships. A platform can be well-built on the first and still be unhealthy on the second if you are not paying attention to your own usage. Track the two separately rather than treating "is it safe" as a single question with a single answer.

None of this means avoid the category entirely. It means use it the way you would use any service that holds sensitive information about you: read the policy, use the deletion tools, keep identifying details out of the conversation where you can, and accept that "safer" is the realistic goal, not "risk-free."

How Uncensy approaches privacy

In the interest of the same honesty this guide asks of every other platform, here is what Uncensy actually does, stated plainly rather than as a sales pitch. Account and chat data sit behind row-level security rules enforced at the database layer, meaning access is scoped to your own account rather than resting on application code alone to keep users' data apart. Generated media is split between public assets served from a CDN and private assets served through short-lived signed links rather than permanent public URLs, so a private image link cannot be reused indefinitely.

Card checkout runs through a standard hosted payment page, and a separate crypto checkout is available for one-time diamond top-ups and prepaid subscription terms, with the trade-offs described earlier in this guide still applying. Account deletion follows the soft-delete pattern: a restore window first, then permanent removal through a scheduled cleanup process. An 18+ requirement is stated directly in the app's own branding and terms. We answer the wider trust question, including who runs the company and what moderation actually forbids, in is Uncensy safe?

One trade-off worth naming directly rather than glossing over: Uncensy requires login before anyone can chat at all. There is no anonymous, no-account way to use it. That is a deliberate choice for accountability and moderation, and it means less anonymity than a platform that allows guest access, not more. If fully anonymous, no-account use is a hard requirement for you, know that going in. For the specifics that matter legally, the privacy policy and terms are the documents that actually govern your account, not this article.

This guide is not specific to Uncensy. The checklist, the crypto caveats, and the warning signs above apply the same way whether you end up on Uncensy, a competitor, or whatever app launches next year. If you want to see how the rest of the product works before you read the fine print, our brand explainer and companion-building guide cover that ground. If you run into anything privacy-related that this article does not answer, support is the right place to ask.

Checklist for evaluating an AI companion app privacy policy before signing up
Run through this checklist before you hand any AI companion app your email or your card.

Frequently asked questions

What data do AI companion apps typically collect?
Account email, full chat history, any generated images or voice clips, payment and billing metadata, and device or session information such as IP address and login timestamps. Retention and sharing practices vary widely between apps, which is why the specific privacy policy matters more than assumptions about the category.
Is an AI girlfriend or boyfriend app safe to use?
No app in this category is risk-free. Independent research has found inconsistent data practices across romantic AI chatbot apps as a category. Reasonable safety comes from checking the privacy policy, using deletion tools, and keeping identifying details out of the conversation, not from assuming any single app is automatically safe.
Can I use an AI companion app anonymously?
It depends on the platform. Some allow guest or anonymous use; others, including Uncensy, require an account and login before you can chat at all, which trades anonymity for accountability. Check this specifically before you sign up if anonymous use matters to you.
How do I delete my AI chat history?
Look for an account deletion option inside the app itself rather than relying on a support email. Most legitimate platforms use a soft delete with a restore window, followed by permanent removal after a stated retention period. Check the specific privacy policy for that period rather than assuming deletion is instant.
Does paying with crypto make my payment anonymous?
No. Crypto payment keeps the purchase off your card statement, which is a real privacy benefit, but it is not anonymous. Most crypto is purchased through an identity-verified exchange, and blockchain transactions are recorded on a public ledger.
What should I avoid telling an AI companion?
Your real full name, home address, workplace, and any real, identifiable person's photo or details, even inside a fictional story. Treat the conversation the way you would treat a public forum post.
What rights do I have over my data if I am in the EU?
Under GDPR, you have the right to access a copy of the personal data an organization holds about you (Article 15) and the right to request its erasure (Article 17), regardless of a specific app's default settings.
How can I tell if an AI companion app is not taking privacy seriously?
Warning signs include no findable privacy policy, no in-app deletion option, no identifiable company behind the app, promises of "complete anonymity" with nothing to back it up, and a subscription that is hard to cancel. One of these might be a rough edge; several together are a pattern worth avoiding.
How does Uncensy handle account deletion?
Uncensy uses a soft-delete pattern: your account is marked for deletion and held for a restore window, then permanently removed through a scheduled cleanup process. The current privacy policy has the authoritative details.

Read the privacy policy before you sign up

See exactly what Uncensy collects, how long it is kept, and how account deletion actually works.

Read Uncensy's privacy policy

Sources

  1. Art. 17 GDPR - Right to erasure (‘right to be forgotten’)(General Data Protection Regulation (EU) 2016/679)
  2. Art. 15 GDPR - Right of access by the data subject(General Data Protection Regulation (EU) 2016/679)
  3. EU AI Act, Article 50 - Transparency obligations for providers and deployers of certain AI systems(Regulation (EU) 2024/1689)
  4. Happy Valentine’s Day! Romantic AI Chatbots Don’t Have Your Privacy at Heart(Mozilla Foundation, *Privacy Not Included)
  5. Talk, Trust, and Trade-Offs: How and Why Teens Use AI Companions(Common Sense Media)

Written by

UE

Uncensy Editorial

Product and safety team

This post is written and maintained by the people who build and moderate Uncensy. We update it when the product changes, not on a fixed schedule.